Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 

Public repository contains Remote Code Execution vulnerability

Frantz Galinier-Stefani
I'm New Here
I'm New Here
Those new to the Atlassian Community have posted less than three times. Give them a warm welcome!
August 15, 2025

Hello,

The following public repository contains malicious code:
https://bitbucket.org/ethvault-tech-team/ethvault/src/master/

In file server/controllers/productController.js, the function `getCookie` downloads arbitrary code from:
https://api.mocki.io/v2/964ug6uu
and executes it locally using `new Function(...)` with `require`.

This is a Remote Code Execution vulnerability that could fully compromise a user’s machine.
The repository has been online since July 10, 2025 and is being shared with job candidates as a “technical test”.

Please investigate and take action to remove or restrict this repository.

1 answer

0 votes
Mikael Sandberg
Community Champion
August 15, 2025

Hi @Frantz Galinier-Stefani,

Welcome to Atlassian Community!

Please report this to abuse@atlassian.com and they will take action on it. Just note that the team will not reply back. 

Frantz Galinier-Stefani
I'm New Here
I'm New Here
Those new to the Atlassian Community have posted less than three times. Give them a warm welcome!
August 15, 2025

Ok, thx 

Like Mikael Sandberg likes this

Suggest an answer

Log in or Sign up to answer
TAGS
AUG Leaders

Atlassian Community Events